dopo aver fatto la scansione con asquared2 esce questo report in cui poi ho cancellato i trojan, sperando di averli eliminati definitivamente
-squared Free - Version 2.1
Impostazioni scansione:
Oggetti: Memoria, Tracce, Cookies, C:\, D:\, I:\
Archivio scansioni: On
Scientifico: On
ADS Scan: On
Scansione avviata: 16/01/2007 10.49.10
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2 rilevati: Trace.Directory.Radmin
C:\Programmi\radmin rilevati: Trace.Directory.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\help (english).lnk rilevati: Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\remote administrator viewer.lnk rilevati: Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\settings for remote administrator server.lnk rilevati: Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\start remote administrator server.lnk rilevati: Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\stop remote administrator server.lnk rilevati: Trace.File.Radmin
C:\Programmi\radmin\help.cnt rilevati: Trace.File.Radmin
C:\Programmi\radmin\help.hlp rilevati: Trace.File.Radmin
C:\Programmi\radmin\license.txt rilevati: Trace.File.Radmin
C:\Programmi\radmin\r_server.exe rilevati: Trace.File.Radmin
C:\Programmi\radmin\radmin.exe rilevati: Trace.File.Radmin
C:\Programmi\radmin\readme.txt rilevati: Trace.File.Radmin
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\uninstall\remote administrator v2.2 rilevati: Trace.Registry.Radmin
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\r oot\legacy_r_server rilevati: Trace.Registry.Radmin
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\r_server rilevati: Trace.Registry.Radmin
Key: HKEY_LOCAL_MACHINE\system\radmin rilevati: Trace.Registry.Radmin
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\Remote Administrator v2.2 --> DisplayName rilevati: Trace.Registry.Radmin
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\Remote Administrator v2.2 --> UninstallString rilevati: Trace.Registry.Radmin
C:\Documents and Settings\User\Cookies\user@atdmt[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@cgi-bin[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@mediaplex[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@statse.webtrendslive[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@bluestreak[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@tradedoubler[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@media.intelia[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@statcounter[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@doubleclick[1].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@sex-superstore[2].txt rilevati: Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@zedo[2].txt rilevati: Trace.TrackingCookie
C:\WINDOWS\SYSTEM32\raddrv.dll rilevati: Riskware.RemoteAdmin.Win32.RAdmin.20
C:\WINDOWS\112.tmp rilevati: Adware.Win32.LinkOptimizer.a
C:\Programmi\Radmin\raddrv.dll rilevati: Riskware.RemoteAdmin.Win32.RAdmin.20
C:\Programmi\Radmin\radmin.exe rilevati: Riskware.RemoteAdmin.Win32.RAdmin.22
C:\Programmi\Radmin\r_server.exe rilevati: Riskware.RemoteAdmin.Win32.RAdmin.22
C:\Programmi\Nokia\Nokia PC Suite 6\OneTouchAccess.exe rilevati: Heuristic.Dialer
C:\Documents and Settings\User\Documenti\RADMIN22.EXE rilevati: Riskware.RemoteAdmin.Win32.RAdmin.20
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\CDQF4TU7\lfolv[1].htm rilevati: Hoax.Win32.Renos.gc
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\51J35ZQC\fliffccjm[1].txt rilevati: Trojan-Clicker.Win32.Costrat.ae
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\51J35ZQC\hgmslsbl[1].htm rilevati: Dialer
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\SK82NRZI\jkzfp[1].txt rilevati: Trojan-PSW.Win32.Sinowal.bv
C:\lhlk.exe rilevati: Trojan-Clicker.Win32.Costrat.ae
C:\FOUND.055\FILE0000.CHK rilevati: Hoax.Win32.Renos.gc
D:\Download\scene\Remote Administrator v2.2.rar/RADMIN22.EXE rilevati: Riskware.RemoteAdmin.Win32.RAdmin.20
Scansionati
Files: 135689
Tracce: 94083
Cookies: 82
Processi: 30
Rilevato
Files: 14
Tracce: 19
Cookies: 11
Processi: 0
Chiavi registro: 0
Fine scansione: 16/01/2007 11.38.53
Tempo scansione: 0.49.43
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\SK82NRZI\jkzfp[1].txt Cancellato Trojan-PSW.Win32.Sinowal.bv
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\51J35ZQC\hgmslsbl[1].htm Cancellato Dialer
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\51J35ZQC\fliffccjm[1].txt Cancellato Trojan-Clicker.Win32.Costrat.ae
C:\lhlk.exe Cancellato Trojan-Clicker.Win32.Costrat.ae
C:\Documents and Settings\PIuAbymXhRjMuE\Impostazioni locali\Temporary Internet Files\Content.IE5\CDQF4TU7\lfolv[1].htm Cancellato Hoax.Win32.Renos.gc
C:\FOUND.055\FILE0000.CHK Cancellato Hoax.Win32.Renos.gc
C:\Programmi\Nokia\Nokia PC Suite 6\OneTouchAccess.exe Cancellato Heuristic.Dialer
C:\Programmi\Radmin\radmin.exe Cancellato Riskware.RemoteAdmin.Win32.RAdmin.22
C:\Programmi\Radmin\r_server.exe Cancellato Riskware.RemoteAdmin.Win32.RAdmin.22
C:\WINDOWS\112.tmp Cancellato Adware.Win32.LinkOptimizer.a
C:\WINDOWS\SYSTEM32\raddrv.dll Cancellato Riskware.RemoteAdmin.Win32.RAdmin.20
C:\Programmi\Radmin\raddrv.dll Cancellato Riskware.RemoteAdmin.Win32.RAdmin.20
C:\Documents and Settings\User\Documenti\RADMIN22.EXE Cancellato Riskware.RemoteAdmin.Win32.RAdmin.20
D:\Download\scene\Remote Administrator v2.2.rar/RADMIN22.EXE Cancellato Riskware.RemoteAdmin.Win32.RAdmin.20
C:\Documents and Settings\User\Cookies\user@atdmt[2].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@cgi-bin[1].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@mediaplex[1].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@statse.webtrendslive[1].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@bluestreak[1].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@tradedoubler[2].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@media.intelia[2].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@statcounter[2].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@doubleclick[1].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@sex-superstore[2].txt Cancellato Trace.TrackingCookie
C:\Documents and Settings\User\Cookies\user@zedo[2].txt Cancellato Trace.TrackingCookie
Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\uninstall\remote administrator v2.2 Cancellato Trace.Registry.Radmin
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\r oot\legacy_r_server Cancellato Trace.Registry.Radmin
Key: HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\r_server Cancellato Trace.Registry.Radmin
Key: HKEY_LOCAL_MACHINE\system\radmin Cancellato Trace.Registry.Radmin
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\Remote Administrator v2.2 --> DisplayName Cancellato Trace.Registry.Radmin
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\Remote Administrator v2.2 --> UninstallString Cancellato Trace.Registry.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\help (english).lnk Cancellato Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\remote administrator viewer.lnk Cancellato Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\settings for remote administrator server.lnk Cancellato Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\start remote administrator server.lnk Cancellato Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2\stop remote administrator server.lnk Cancellato Trace.File.Radmin
C:\Programmi\radmin\help.cnt Cancellato Trace.File.Radmin
C:\Programmi\radmin\help.hlp Cancellato Trace.File.Radmin
C:\Programmi\radmin\license.txt Cancellato Trace.File.Radmin
C:\Programmi\radmin\r_server.exe Cancellato Trace.File.Radmin
C:\Programmi\radmin\radmin.exe Cancellato Trace.File.Radmin
C:\Programmi\radmin\readme.txt Cancellato Trace.File.Radmin
C:\Documents and Settings\All Users\Menu Avvio\Programmi\remote administrator v2.2 Cancellato Trace.Directory.Radmin
C:\Programmi\radmin Cancellato Trace.Directory.Radmin
Cancellato
Files: 14
Tracce: 19
Cookies: 11
sono davvero eliminati?? se NO quale prog devo installare dopo antivir - asquared2 zone alarm e avg antyspyware??

Rispondi quotando